SBI Data Leak – Millions of Customers Data Leaked From Unsecured Server

SBI Data Leak allows anyone to access millions of its customer’s financial data and recent transactions history.

SBI is an Indian multinational, public sector banking and financial services, it is the largest bank in India with a 23% market share in assets.

According to TechCrunch report, an SBI server in Mumbai-based data center that stored the data from SBI Quick was left online without any password protection.

SBI Quick is free SBI service used by customers to get Account Balance, Mini Statement and more just by giving a Missed Call or sending an SMS with pre-defined keywords to pre-defined mobile numbers.

The bank has failed to protect the server which allows anyone by having the IP address of the server can access the data on millions of customers’ information.

It is not known for how long the server is kept open, Techcrunch confirms the server storing millions of messages every day.

Techcrunch reached out to SBI and the bank reacted quickly and fixed the issue within hours. If this information accessed by threat actors will pose a serious risk to bank customers.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Massive Collection of 2.2 Billion Usernames and Passwords Circulated in Hacker Forums

Cybercrime as a Service – Hackers Selling Ransomware, RDP logins and Credit Card Details on the Underground Markets

Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

BPFDoor Malware Uses Reverse Shell to Expand Control Over Compromised Networks

A new wave of cyber espionage attacks has brought BPFDoor malware into the spotlight as…

4 hours ago

EU’s GDPR Article 7 Poses New Challenges for Businesses To Secure AI-Generated Image Data

As businesses worldwide embrace digital transformation, the European Union’s General Data Protection Regulation (GDPR), enacted…

5 hours ago

Morocco Investigation Major Data Breach Allegedly Claimed by Algerian Hackers

The National Social Security Fund (CNSS) of Morocco has confirmed that initial checks on leaked…

5 hours ago

Smishing Campaign Hits Toll Road Users with $5 Payment Scam

Cybersecurity researchers at Cisco Talos have uncovered a large-scale smishing campaign targeting toll road users…

5 hours ago

IBM Aspera Faspex Flaw Allows Injection of Malicious JavaScript in Web UI

A significant security vulnerability has been identified in IBM Aspera Faspex 5, a popular file…

6 hours ago

Chinese APT Group Targets Ivanti VPN Vulnerabilities to Breach Networks

In a concerning report from cybersecurity firm TeamT5, it has been revealed that a Chinese…

6 hours ago